1

Internship Cyber Security Risk Analyst Jobs in Minneapolis, MN

Risk Documentation: Document identified risks, control gaps, findings, compensating controls, and ... AI-Assisted Analysis: Use AI assistants and related tools to improve cybersecurity research, risk ...

Risk Documentation: Document identified risks, control gaps, findings, compensating controls, and ... AI-Assisted Analysis: Use AI assistants and related tools to improve cybersecurity research, risk ...

The Fraud Risk Analyst develops data-driven insights and strategies that strengthen fraud ... cybersecurity, or a related field, and experience translating findings into business ...

next page

Showing results 1-20

Internship Cyber Security Risk Analyst information

See Minneapolis, MN salary details

$44.9K

$103.8K

$156.6K

How much do internship cyber security risk analyst jobs pay per year?

As of Aug 31, 2026, the average yearly pay for internship cyber security risk analyst in Minneapolis, MN is $103,754.00, according to ZipRecruiter salary data. Most workers in this role earn between $83,000.00 and $120,600.00 per year, depending on experience, location, and employer.

What does an internship cyber security risk analyst do?

An Internship Cyber Security Risk Analyst supports the cybersecurity team by identifying, assessing, and helping to mitigate potential security risks within an organization’s information systems. Interns in this role often assist with evaluating security measures, conducting vulnerability assessments, and reviewing compliance with security policies. They may also help develop risk reports and collaborate with other teams to implement best security practices. This position is ideal for those looking to gain hands-on experience in the field of cybersecurity risk management.

What are the key skills and qualifications needed to thrive as an internship cyber security risk analyst?

To thrive as an Internship Cyber Security Risk Analyst, you need foundational knowledge in information security principles, risk assessment, and familiarity with security frameworks, often supported by coursework in cybersecurity or related fields. Experience with tools such as vulnerability scanners, SIEM platforms, and basic certifications like CompTIA Security+ are highly valued. Strong analytical thinking, attention to detail, and effective communication skills help interns interpret findings and collaborate with teams. These capabilities are crucial for identifying vulnerabilities, supporting risk mitigation, and ensuring the security posture of an organization.

What types of projects or tasks can an intern expect to work on as a cyber security risk analyst?

As an intern in Cyber Security Risk Analysis, you can expect to assist with identifying and assessing potential security risks within an organization’s IT infrastructure. Common tasks may include helping to review security policies, conduct vulnerability assessments, and analyze security incidents under the guidance of senior analysts. You may also collaborate with IT and compliance teams to document findings and recommend mitigation strategies. This role offers the chance to gain hands-on experience with industry-standard tools and exposure to real-world risk management processes, providing a strong foundation for a future career in cybersecurity.

What is the difference between Internship Cyber Security Risk Analyst vs Cyber Security Risk Analyst?

AspectInternship Cyber Security Risk AnalystCyber Security Risk Analyst
QualificationsEnrolled in or recent graduate of relevant degree programs; some certifications beneficialTypically requires professional certifications (e.g., CISSP, CISA) and experience
Work EnvironmentInternship setting, learning-focused, supervisedFull-time, professional role with independent responsibilities
ResponsibilitiesAssisting with risk assessments, supporting security projects, learning proceduresConducting risk analysis, developing mitigation strategies, managing security protocols

The Internship Cyber Security Risk Analyst role is an entry-level, learning position designed for students or recent graduates gaining industry experience. In contrast, a Cyber Security Risk Analyst is a full-time professional responsible for managing and analyzing security risks independently. The internship offers foundational exposure, while the full analyst role requires more advanced skills and certifications.

What are the most commonly searched types of Cyber Security Risk Analyst jobs in Minneapolis, MN?

The most popular types of Cyber Security Risk Analyst jobs in Minneapolis, MN are:

Infographic showing various Internship Cyber Security Risk Analyst job openings in Minneapolis, MN as of August 2026, with employment types broken down into 7% Internship, 65% Full Time, 21% Part Time, and 7% Contract. Highlights an 79% In-person, 14% Hybrid, and 7% Remote job distribution, with an average salary of $103,754 per year, or $49.9 per hour.

Cybersecurity Analyst

Saint Paul, MN • On-site


NextEra Energy

8.4

Company rating: 8.4 out of 10

Based on 55 frontline employees who took The Breakroom Quiz

19th of 53 rated energy and utility

Great coworkers

People enjoy working here

Good employer


Full-time

Posted 6 days ago


Job description

Requisition ID:  97057 

NextEra Analytics offers energy consulting services using industry-leading scientific analysis for planning, siting, forecasting and optimizing all forms of energy projects. Our optimization and analytics platforms integrate open-source technologies to leverage massive, diverse sets of utility operating data. This enables rapid development of operational solutions. Applying expertise in advanced mathematics, data and physical sciences, we solve some of the hardest problems facing the energy industry.
 

Position Specific Description

We are seeking a cybersecurity professional to support the continued development and execution of NEA's cybersecurity risk management program. This role will coordinate security assessments, third-party risk reviews, application security evaluations, penetration testing activities, and remediation tracking across the organization.

The successful candidate will work closely with engineering teams, application owners, vendors, and business stakeholders to identify cybersecurity risks, document findings, and drive issues through resolution. This individual will also help standardize cybersecurity processes, reporting, and governance while using AI-enabled tools to improve analysis, efficiency, and decision-making.

Key Responsibilities & Expectations

1. Cybersecurity Risk Management

  • Security Assessments: Support cybersecurity assessments and risk reviews across applications, platforms, vendors, and technology solutions.
  • Risk Documentation: Document identified risks, control gaps, findings, compensating controls, and formal risk decisions.
  • Remediation Management: Track cybersecurity findings and remediation activities through validation and closure. Support risk acceptance and exception handling, including documenting formal security decisions when remediation is deferred.

2. Third-Party and Application Security

  • Third-Party Risk Assessments: Support security assessments for vendors, SaaS platforms, development tools, and AI-enabled solutions.
  • Application Security Reviews: Coordinate security reviews for applications and technology tools, including evidence collection, documentation, findings management, and stakeholder follow-up.
  • Stakeholder Coordination: Partner with application owners, engineering teams, vendors, and business stakeholders to obtain required information and resolve identified concerns.

3. Security Testing and Resiliency

  • Penetration Testing Coordination: Support penetration testing activities, including scheduling, scope coordination, results management, remediation tracking, and reporting.
  • Critical Application Resiliency: Assist with resiliency assessments for critical applications by organizing documentation, evaluating risk information, and tracking required actions.
  • Issue Resolution: Work with technical and business teams to identify appropriate remediation plans and ensure cybersecurity risks are addressed in a timely manner.
  • Audit Prep: Assist with audit and evidence requests by organizing support materials, tracking responses, and confirming completeness.

4. Governance, Reporting, and Process Improvement

  • Risk and Assessment Inventories: Maintain accurate inventories of assessed applications, vendors, findings, risk decisions, and remediation status.
  • Standardized Processes: Develop and maintain consistent assessment templates, workflows, procedures, reports, and dashboards.
  • Program Reporting: Provide clear and actionable reporting on cybersecurity risks, assessment activity, remediation progress, and program performance.  Analyze recurring findings, remediation patterns, and program trends to help prioritize work and improve the overall cybersecurity program.
  • Continuous Improvement: Identify opportunities to improve the consistency, scalability, and effectiveness of cybersecurity review processes.

5. AI-Enabled Cybersecurity Productivity

  • AI-Assisted Analysis: Use AI assistants and related tools to improve cybersecurity research, risk analysis, documentation, and decision support.
  • Workflow Efficiency: Apply AI-enabled capabilities to streamline evidence review, reporting, remediation tracking, and other repeatable cybersecurity activities.
  • Responsible Adoption: Validate AI-generated outputs, protect sensitive information, and ensure responsible use of AI tools in cybersecurity work.

6. Collaboration and Ownership

  • Cross-Functional Partnership: Collaborate with engineering, application owners, cybersecurity teams, vendors, and business stakeholders to identify security gaps and support remediation.
  • Clear Communication: Translate cybersecurity risks and technical findings into clear, business-relevant language.
  • Ownership and Accountability: Manage assigned assessments and findings from initiation through completion while communicating risks, dependencies, and delays proactively.  Apply working knowledge of application security and DevSecOps practices, including vulnerability management concepts and secure delivery workflows.

Required Qualifications

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Risk Management, or equivalent practical experience.
  • Experience supporting cybersecurity risk assessments, security compliance activities, application security reviews, or third-party risk management.
  • Familiarity with cybersecurity controls, risk management concepts, vulnerability management, and remediation practices.
  • Experience coordinating work across technical teams, business stakeholders, and external vendors.
  • Strong organizational skills with the ability to manage documentation, findings, deadlines, and multiple concurrent assessments.
  • Strong written and verbal communication skills, including the ability to explain cybersecurity risks to both technical and nontechnical audiences.
  • Experience using reporting, workflow, ticketing, governance, risk, and compliance tools.
  • Familiarity with GRC, workflow, or case management tools used for risk tracking and remediation.
  • Experience with vulnerability management, security review coordination, or penetration test support.
  • Basic familiarity with application security and DevSecOps concepts such as SAST, SCA, DAST, CI/CD, and secure coding.
  • Ability to use AI assistants and related technologies responsibly to improve analysis, documentation, and workflow efficiency.
  • Ability to validate AI-assisted outputs and handle sensitive information appropriately.

What NextEra Energy employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom